Rockwell Automation FactoryTalk AssetCentre Use of Potentially Dangerous Function
CVE-2021-27474
10CRITICAL
Key Information:
- Vendor
Rockwell Automation
- Status
- Vendor
- CVE Published:
- 23 March 2022
What is CVE-2021-27474?
Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier does not properly restrict all functions relating to IIS remoting services. This vulnerability may allow a remote, unauthenticated attacker to modify sensitive data in FactoryTalk AssetCentre.
Affected Version(s)
FactoryTalk AssetCentre <= unspecified